Cyber Threat Analyst

Schaumburg, IL, United States
Main Location
Schaumburg, IL, United States
Open jobs
PowerToFly approved because…

They've actually hired through PowerToFly! Meet Michelle Ensey, who is Paylocity's newest Product Owner! Michelle says she was attracted to Paylocity because of their "core values... They have a remote workforce and manage it well - meaning that I feel confident about working remotely and being a valued member of the team. I'm able to balance my family and my career without having to sacrifice one for the other."

Keep reading to check out Paylocity's open roles!



At Paylocity, we create software that makes companies – especially their HR teams – better, faster, and stronger. We give clients the tools they need to make their companies run, and give our employees a rewarding company culture – all putting us in a category of our own. Join us and learn what makes us unique!

We’re a fast-growing company ready to revolutionize the payroll and HR world for hundreds of thousands of businesses by delivering innovative technology and support. We seek the best and brightest to help us create the future of our talent solutions – enabling our customers to better develop their employees. Our own employees are equally important to us: We work hard to provide the best work environment for our employees, and are dedicated to giving back to the communities in which we live and work.

Delivering one-of-a-kind cloud technology, accompanied by award winning customer service, Paylocity is a software development company in a category of its own.  We are a publicly traded company that offers an Employee Stock Purchase Program (ESPP) which enables employees to share in the long-term growth and future success of the company.
 
Poised to revolutionize the world of human capital management for hundreds of thousands of small and medium sized businesses, we are seeking the best and the brightest to help us create the future of our talent solutions – enabling our customers to better develop their employees and supervisors.
 
The Cyber Threat Analyst is responsible for understanding and providing appropriate surveillance for the critical cyber threats to Paylocity’s Information Systems. The Cyber Threat Analyst will leverage Network Monitoring, Logging and Security Incident Event Management (SIEM) systems to produce alerts, audit data and reporting to detect suspicious activity and will analyze the threat data to help the Information Security team to determine what response is appropriate. This position will also participate in Incident Responses to analyze and perform forensics analysis to help determine the root cause and recommend corrective measures.
 
Are you the teammate that we are looking for?
 
Who you are:
·       Passionate about information security and privacy
·       An evangelist regarding the importance of information security
·       Well versed in security issues affecting financial service organizations as well as widespread data center operations, such as cloud and mobile technology solutions
·       Committed to an ongoing partnership with other high profile groups within the organization (e.g. software development) to insure information security objectives are being understood and embraced
·       Established presence within information security communities
·       Able to anticipate problems and recommend decisive action
·       Excellent communication skills (both written and oral)
·       Able to work collaboratively across the organization
·       Values their role as an advisor and business enabler more than their role as a rule enforcer
·       Self-driven, creative, and resourceful
 
How we work:
·       Casual, collaborative environment which embraces and operates under our shared principles 
·       Complete transparency with open, honest discussions about our progress
·       Close working relationships across all areas of the organization
·       Focus on outcomes and learning
 
What we offer:
·       A strong commitment to Information Security both financially and organizationally 
·       An existing talented and passionate Information Security team
·       The chance to meaningfully contribute to a vast market opportunity
·       A collaborative environment where our security team is empowered to help steer the direction of the team
·       A place to contribute your security knowledge company-wide through forum panels with our product development team 
·       Annual training allowance to learn new things and bring it back to the team.
·       Flexible remote work schedule
·       Employee Stock Purchase Program (ESPP) which enables employees to share in the long-term growth and future success of the company
 
Required Experience:
·       Bachelor's Degree in InfoSec, Computer Science, or a related discipline
·       Minimum 5 years of IT experience involving firewalls, patch management, vulnerability scanning, packet sniffers, intrusion prevention, and SIEM. Must include experience writing rules for WAFs (preferably F5 BIG-IP ASM) and SIEMs (e.g., ArcSight, QRadar, LogRythm, Splunk, etc.) and developing effective monitoring and alerting for suspicious activity
·       Experience collecting data from multiple sources and consolidating results into analytic models, alerts, and reports
·       Experienced meeting corporate security policies and regulatory requirements
·       Strongly prefer a relevant security certification such as: 
Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) GIAC Security Expert (GSE) o  GIAC Systems and Network Auditor (GSNA) Computer Security Incident Handler (CSIH) GIAC Certified Incident Handler (GCIH)  GIAC Certified Forensic Analyst (GCFA)  Certified Ethical Hacker (CEH)
 
During the last three months, you would have:
·       Ensured that we monitor for and analyze cyber threats on a regular basis as part of a comprehensive program to reduce our risk exposure to an acceptable level
·       Evaluated security threats, assess the potential impact to the business, and implement strategies to detect and generate alerts on security incidents
·       Determined what data traffic should be logged and/or monitored to correlate and quickly assess security events
·       Applied business intelligence to analyze data from logs and monitoring to produce meaningful alerts and reports for potential security incidents
·       Analyzed data collected to determine if there are any security anomalies that require further action, and if so classify and document the incident, escalate significant security incidents
·       Provided situational awareness during significant security incidents through clear and concise communication to appropriate personnel
·       Worked collaboratively with IT and Software Development to continually improve our security posture  Performed forensics analysis when necessary
·       Provided input on emerging threats to executives to update our corporate risk analysis
·       Evaluated and recommend new security technologies, processes and methodologies
·       Understood and stayed current with the critical threats to our IT infrastructure and SaaS applications by continually analyzing cyber threat intelligence sources and techniques utilized by cybercriminals
·       Promoted a proactive approach to addressing the changing threat landscape by recommending and implementing architectural improvements to security infrastructure (including security event and discovery/detection tools including firewalls, IDS/IP, SIEM, and other systems)
·       Provided Incident Response leadership, triage, discovery, technical resolution, and inter-team communication during any security event
Help us maintain the quality of jobs posted on PowerToFly. Let us know if this job is closed.
Mission
We're a community of women leveraging our connections into top companies to help underrepresented women get the roles they've always deserved. Simultaneously, we work to build truly inclusive hiring processes and environments where women can thrive and not just survive.
Are you hiring? Join our platform for diversifiying your team